2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-36501MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Michael Winkler teachPress plugin <= 9.0.2 versions.
CVE-2023-36385MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in wpxpo PostX – Gutenberg Post Grid Blocks plugin <= 2.9.9 v...
CVE-2023-34369MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in GrandSlambert Login Configurator plugin <= 2.1 version...
CVE-2023-34017MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in FiveStarPlugins Five Star Restaurant Reservations plugin <...
CVE-2023-3637MEDIUM6.5An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user t...
CVE-2023-3486HIGH7.5An authentication bypass exists in PaperCut NG versions 22.0.12 and prior that could allow a remote, unauthenticated att...
CVE-2023-35043MEDIUM6.1Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Neha Goel Recent Posts Slider plugin <= 1.1 versions.
CVE-2023-33925MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in PluginForage WooCommerce Product Categories Selection Widg...
CVE-2023-23833MEDIUM5.4Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Steven Henty Drop Shadow Boxes plugin <= 1.7.10 version...
CVE-2023-2850MEDIUM4.7NodeBB is affected by a Cross-Site WebSocket Hijacking vulnerability due to missing validation of the request origin. Ex...
CVE-2023-3897MEDIUM5.3Username enumeration is possible through Bypassing CAPTCHA in On-premise SureMDM Solution on Windows deployment allows a...
CVE-2023-3890MEDIUM6.1A vulnerability classified as problematic has been found in Campcodes Beauty Salon Management System 1.0. This affects a...
CVE-2023-3888MEDIUM6.1A vulnerability was found in Campcodes Beauty Salon Management System 1.0. It has been rated as problematic. Affected by...
CVE-2023-3887MEDIUM6.1A vulnerability was found in Campcodes Beauty Salon Management System 1.0. It has been declared as problematic. Affected...
CVE-2023-3886MEDIUM6.1A vulnerability was found in Campcodes Beauty Salon Management System 1.0. It has been classified as problematic. Affect...
CVE-2023-35088CRITICAL9.8Improper Neutralization of Special Elements Used in an SQL Command ('SQL Injection') vulnerability in Apache Software Fo...
CVE-2023-34434HIGH7.5Deserialization of Untrusted Data Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache In...
CVE-2023-34189MEDIUM6.5Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache...
CVE-2023-21406HIGH8.8Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when communicating over OSDP. A heap-based bu...
CVE-2023-21405MEDIUM6.5Knud from Fraktal.fi has found a flaw in some Axis Network Door Controllers and Axis Network Intercoms when communicatin...
CVE-2023-3885MEDIUM6.1A vulnerability was found in Campcodes Beauty Salon Management System 1.0 and classified as problematic. This issue affe...
CVE-2023-35078CRITICAL9.8An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or re...
CVE-2023-35067HIGH7.5Plaintext Storage of a Password vulnerability in Infodrom Software E-Invoice Approval System allows Read Sensitive Strin...
CVE-2023-35066CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Infodrom Software ...
CVE-2023-3884MEDIUM6.1A vulnerability has been found in Campcodes Beauty Salon Management System 1.0 and classified as problematic. This vulne...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now